Skip to main content
MarcusH
New Member
July 2, 2021
Question

Traffic Filter logical operations on ranges/subnets

  • July 2, 2021
  • 1 reply
  • 1893 views

Hi, we are using a Fortigate 6.4.6 with local logging. We would like to filter forward traffic log (and others) by negating or logically combining subnets or ranges.

Simple example: Destination NOT 95.96.0.0/16.

Slightly more complex example: Destination NOT (192.168.0.0/16 or 10.0.0.0/8 or 172.16.0.0/12).

Entering subnets converts the network to a range, but after that it is not possible to logically combine multiple ranges using OR or NOT.

Any solution on this?

Thank you

Marcus

1 reply

kgeorge
Staff
Staff
July 11, 2023

Hello Marcus,

 

Sorry that, this post was unaddressed so far.

 

Like to inform you that, we can use multiple individual entries for Destination Not however cannot combine it under one filter entry. 

"And" and "Or" are two separate values hence, using "Or" with "Not" filter will not work.

 

Regards,

Klint George

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.